<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: Vítor de Santana Oliveira Norberto</title>
    <description>The latest articles on DEV Community by Vítor de Santana Oliveira Norberto (@norbertoooo).</description>
    <link>https://dev.to/norbertoooo</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F383138%2F8f8b5975-f927-4c09-b35d-e118eb5f7d64.jpeg</url>
      <title>DEV Community: Vítor de Santana Oliveira Norberto</title>
      <link>https://dev.to/norbertoooo</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/norbertoooo"/>
    <language>en</language>
    <item>
      <title>Gerando certificado SSL com certbot na Oracle Cloud Infrastructure</title>
      <dc:creator>Vítor de Santana Oliveira Norberto</dc:creator>
      <pubDate>Sat, 21 Oct 2023 12:03:39 +0000</pubDate>
      <link>https://dev.to/norbertoooo/gerando-certificado-ssl-com-certbot-na-oracle-cloud-infrastructure-3ocl</link>
      <guid>https://dev.to/norbertoooo/gerando-certificado-ssl-com-certbot-na-oracle-cloud-infrastructure-3ocl</guid>
      <description>&lt;p&gt;Necessário antes de seguir esse passo a passo:&lt;/p&gt;

&lt;ol&gt;
&lt;li&gt;Ter uma instância na oci&lt;/li&gt;
&lt;li&gt;Possuir um domínio&lt;/li&gt;
&lt;/ol&gt;

&lt;p&gt;&lt;strong&gt;Acesse sua instância via ssh com o comando:&lt;/strong&gt;&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;ssh &lt;span class="nt"&gt;-i&lt;/span&gt; &lt;span class="o"&gt;{&lt;/span&gt;caminho da sua chave&lt;span class="o"&gt;}&lt;/span&gt; &lt;span class="o"&gt;{&lt;/span&gt;usuário da sua instância&lt;span class="o"&gt;}&lt;/span&gt;@&lt;span class="o"&gt;{&lt;/span&gt;ip público da instância&lt;span class="o"&gt;}&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;ex: &lt;code&gt;ssh -i C:\Users\user\Documents\Cloud\oci\ssh-key.key opc@168.000.000.00&lt;/code&gt;&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Instalar o certbot&lt;/strong&gt;&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;instalar snap
&lt;/li&gt;
&lt;/ul&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;&lt;span class="nb"&gt;sudo &lt;/span&gt;dnf &lt;span class="nb"&gt;install &lt;/span&gt;https://dl.fedoraproject.org/pub/epel/epel-release-latest-9.noarch.rpm
&lt;span class="nb"&gt;sudo &lt;/span&gt;yum update &lt;span class="nt"&gt;-y&lt;/span&gt;
&lt;span class="nb"&gt;sudo &lt;/span&gt;yum &lt;span class="nb"&gt;install &lt;/span&gt;snapd &lt;span class="nt"&gt;-y&lt;/span&gt;
&lt;span class="nb"&gt;sudo &lt;/span&gt;systemctl &lt;span class="nb"&gt;enable&lt;/span&gt; &lt;span class="nt"&gt;--now&lt;/span&gt; snapd.socket
&lt;span class="nb"&gt;sudo ln&lt;/span&gt; &lt;span class="nt"&gt;-s&lt;/span&gt; /var/lib/snapd/snap /snap
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;ul&gt;
&lt;li&gt;instalar certbot
&lt;/li&gt;
&lt;/ul&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;&lt;span class="nb"&gt;sudo &lt;/span&gt;yum remove certbot
&lt;span class="nb"&gt;sudo &lt;/span&gt;snap &lt;span class="nb"&gt;install&lt;/span&gt; &lt;span class="nt"&gt;--classic&lt;/span&gt; certbot
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;&lt;strong&gt;Liberar porta 80 e 433 para tráfego no console da oci&lt;/strong&gt;&lt;/p&gt;

&lt;p&gt;caminho: - Computação -&amp;gt; Instâncias -&amp;gt; Detalhes da instância&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;Na tela de detalhe da sua instância, acesse a sub-net
&lt;img src="https://res.cloudinary.com/practicaldev/image/fetch/s--HO544Tlt--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_800/https://dev-to-uploads.s3.amazonaws.com/uploads/articles/lv7em74wzckb25aqohys.png" alt="página de Detalhes da instância" width="800" height="395"&gt;
&lt;/li&gt;
&lt;li&gt;acesse a lista de segurança e adicione o tráfego para porta 80(http) e 443 (https)&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;&lt;a href="https://res.cloudinary.com/practicaldev/image/fetch/s--nDoSHJSE--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_800/https://dev-to-uploads.s3.amazonaws.com/uploads/articles/0wxzfjbh1u2ot9oyx24y.png" class="article-body-image-wrapper"&gt;&lt;img src="https://res.cloudinary.com/practicaldev/image/fetch/s--nDoSHJSE--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_800/https://dev-to-uploads.s3.amazonaws.com/uploads/articles/0wxzfjbh1u2ot9oyx24y.png" alt="regras de entrada" width="800" height="65"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;Liberar firewall para porta 80&lt;/strong&gt;&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;&lt;span class="nb"&gt;sudo &lt;/span&gt;systemctl status firewalld
&lt;span class="nb"&gt;sudo &lt;/span&gt;systemctl start firewalld
&lt;span class="nb"&gt;sudo &lt;/span&gt;firewall-cmd &lt;span class="nt"&gt;--permanent&lt;/span&gt; &lt;span class="nt"&gt;--add-service&lt;/span&gt;&lt;span class="o"&gt;=&lt;/span&gt;http
&lt;span class="nb"&gt;sudo &lt;/span&gt;firewall-cmd &lt;span class="nt"&gt;--reload&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;&lt;strong&gt;Gerar certificado&lt;/strong&gt;&lt;br&gt;
&lt;/p&gt;

&lt;div class="highlight js-code-highlight"&gt;
&lt;pre class="highlight shell"&gt;&lt;code&gt;&lt;span class="nb"&gt;sudo &lt;/span&gt;cerbot certonly &lt;span class="nt"&gt;--standalone&lt;/span&gt;
&lt;/code&gt;&lt;/pre&gt;

&lt;/div&gt;



&lt;p&gt;Os certificados serão gerados no caminho /etc/letsencrypt/live/{nome do seu domínio} porém estarão com permissões apenas para o user root, para poder visualizar terá que alterar as permissões para o user default do oracle-linux que é opc.&lt;/p&gt;

&lt;h5&gt;
  
  
  Fontes
&lt;/h5&gt;

&lt;p&gt;&lt;a href="https://docs.oracle.com/pt-br/iaas/Content/GSG/Tasks/testingconnection.htm#Connecting_to_Your_Instance"&gt;conectar a instância com ssh&lt;/a&gt;&lt;br&gt;
&lt;a href="https://certbot.eff.org/instructions?ws=webproduct&amp;amp;os=centosrhel7"&gt;instalar certbot&lt;/a&gt;&lt;br&gt;
&lt;a href="https://www.digitalocean.com/community/tutorials/how-to-use-certbot-standalone-mode-to-retrieve-let-s-encrypt-ssl-certificates-on-ubuntu-16-04"&gt;gerando certificado com letsencrypt&lt;/a&gt;&lt;/p&gt;

</description>
      <category>cloud</category>
      <category>oci</category>
      <category>security</category>
      <category>ptbr</category>
    </item>
  </channel>
</rss>
